First published: Fri Apr 05 2024(Updated: )
Brocade Web Interface in Brocade Fabric OS v9.x and before v9.2.0 does not properly represent the portName to the user if the portName contains reserved characters. This could allow an authenticated user to alter the UI of the Brocade Switch and change ports display.
Credit: sirt@brocade.com
Affected Software | Affected Version | How to fix |
---|---|---|
Brocade FABRIC OS (FOS) | <9.2.0 | |
broadcom fabric operating system | >=9.0.0<9.2.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-5973 has a medium severity rating, impacting the display of port names in the Brocade Web Interface.
To fix CVE-2023-5973, users should upgrade to Brocade Fabric OS version 9.2.0 or later.
CVE-2023-5973 could allow an authenticated user to manipulate the user interface of the Brocade Switch by altering port displays.
CVE-2023-5973 affects users of Brocade Fabric OS versions prior to 9.2.0.
Fabric OS versions from 9.0.0 up to, but not including, 9.2.0 are vulnerable to CVE-2023-5973.